drift.com | Analytics by SecurityHeaders

HTTP Headers report for drift.com

Header Name Header Data
HTTP status code 200
Content-Type text/html; charset=utf-8
Cf-Ray 92b3ff9d3d4a6d99-AMS
Age 32943
Etag "it4mq9fc7u53dd"
X-Amzn-Trace-Id Root=1-67ebf7ed-628379c257d6d16b29195f01;Parent=63ebc69a478052a8;Sampled=0;Lineage=1:3819f9b3:0
Server cloudflare
Content-Security-Policy connect-src 'self' https://adservice.google.com global.ketchcdn.com *.ketchcdn.com *.ketchjs.com *.google.com *.g2crowd.com *.linkedin.com *.chilipiper.com cmstesting.salesloft.com https://munchkin.marketo.net https://geolocation.onetrust.com/cookieconsentpub/v1/geo/location cdn.contentstack.io api.contentstack.io *.contentstack.io *.hotjar.com *.sequel.io *.salesloft.com *.adnxs.com unpkg.com *.hotjar.com *.hotjar.io *.6sc.co *.6sense.com *.marketlinc.com *.nr-data.net/ *.analytics.google.com *.marketo.com *.mktoresp.com *.doubleclick.net *.google-analytics.com/ *.googletagmanager.com/ *.pantheonsite.io/ *.cookielaw.org/ *.wistia.com *.wistia.net embedwistia-a.akamaihd.net *.litix.io *.netdna-ssl.com https://api.company-target.com/api/v2/ip.json https://api.brightfunnel.com/v1/sd https://api-iam.intercom.io/messenger/web/ping wss://nexus-websocket-a.intercom.io/ https://ka-p.fontawesome.com/releases/v5.15.4/css/pro-v4-shims.min.css https://ka-p.fontawesome.com/releases/v5.15.4/css/pro.min.css https://ka-p.fontawesome.com/releases/v5.15.4/css/pro-v4-font-face.min.css https://analytics.google.com/g/collect https://cdn.linkedin.oribi.io/partner/5254305/domain/salesloft.com/token wss://wsp13.hotjar.com/api/v2/client/ws *.google.com *.googleoptimize.com *.hotjar.com *.introvoke.com *.mktoweb.com *.benchmarkseverywhere.com https://saasbenchmarks.ai/ https://live-salesloft-v2.pantheonsite.io/ https://test-salesloft-v2.pantheonsite.io/ https://images.contentstack.io https://slft-cons-preproduction.contentstackapps.com *.driftt.com *.drift.com wss://ws.hotjar.com/api/v2/client/ws; font-src 'self' data: https://fonts.gstatic.com *.netdna-ssl.com https://js.intercomcdn.com/fonts/ *.fontawesome.com *.wistia.com *.bootstrapcdn.com; frame-src 'self' *.doubleclick.net *.sequel.io *.vidyard.com *.youtube.com *.chilipiper.com *.salesloft.com *.wistia.com *.wistia.net embedwistia-a.akamaihd.net https://staticxx.facebook.com/ http://www2.salesloft.com *.greenhouse.io/ *.megaphone.fm *.google.com/ *.contentstack.io *.contentstack.com *.spotify.com *.twitter.com *.facebook.com *.driftt.com *.drift.com https://live-salesloft-v2.pantheonsite.io/ https://images.contentstack.io *.googletagmanager.com; img-src 'self' https: data: blob: *.netdna-ssl.com https://ssl.gstatic.com/; manifest-src 'self' blob:; media-src 'self' blob: *.driftt.com *.wistia.com; object-src 'none'; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://www.google.com *.marketo.com *.netdna-ssl.com https://tagmanager.google.com/ https://fonts.googleapis.com/ *.salesloft.com *.bootstrapcdn.com *.google.com https://live-salesloft-v2.pantheonsite.io/ https://images.contentstack.io/; worker-src blob: data: *.netdna-ssl.com *.contentstackapps.com localhost:3000 salesloft.com cmstesting.salesloft.com *.salesloft.com; base-uri 'none'; frame-ancestors 'self' *.contentstack.com; default-src 'none'; script-src https: 'unsafe-eval' 'unsafe-inline' http://pages.salesloft.com https://geolocation.onetrust.com/cookieconsentpub/v1/geo/location https://tagmanager.google.com/ 'self';
X-Deployment-Uid 67ebf701c047e092fb7edf05
X-Environment-Uid 654397a0f247a275a3a00a23
X-Project-Uid 654397a0f247a275a3a00a1d
Date Fri, 04 Apr 2025 21:46:26 GMT
Cache-Control max-age=0, s-maxage=84000
X-Powered-By Next.js
Set-Cookie __cf_bm=fd0ddIQBjBnAcJaCtabWx1Lnpdy_Wk8dO2mmfjWkm5I-1743803186-1.0.1.1-eVsu06bJlA2ahpgEzJz2tdGxeISSD6JlDgpZJuLiI_ixelpSqzlU3KjjEsOu1_jNNlZO.LTssSsTUtHEypsiLvK9JwxOAYCfR7axehM3v_E; path=/; expires=Fri, 04-Apr-25 22:16:26 GMT; domain=.www.salesloft.com; HttpOnly; Secure; SameSite=None
Connection keep-alive
Cf-Cache-Status HIT
Strict-Transport-Security max-age=63072000; includeSubDomains; preload
Vary Accept-Encoding
X-Amzn-Requestid 04af4459-b93f-4a6f-9d2f-e60b07cf3ab8
X-Envoy-Upstream-Service-Time 3512
X-Org-Uid blt895da6502121df32

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar